DNS rebinding vulnerability found in etcd 3.3.1 and earlier. An attacker can control his DNS records to direct to localhost, and trick the browser into sending requests to localhost (or any other address).
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-1226 | DNS rebinding vulnerability found in etcd 3.3.1 and earlier. An attacker can control his DNS records to direct to localhost, and trick the browser into sending requests to localhost (or any other address). |
Github GHSA |
GHSA-wf43-55jj-vwq8 | DNS Rebinding in etcd |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-09-17T00:36:24.817Z
Reserved: 2017-12-04T00:00:00
Link: CVE-2018-1099
No data.
Status : Modified
Published: 2018-04-03T16:29:00.297
Modified: 2024-11-21T03:59:10.790
Link: CVE-2018-1099
OpenCVE Enrichment
No data.
EUVD
Github GHSA